Data breach affects 100,000 Munson Healthcare patients
TRAVERSE CITY, MI – More than 100,000 Munson Healthcare patients affected by a 2025 data breach are now being notified by mail, prompting the Michigan Attorney General to renew her call for a law requiring companies to immediately report cyber attacks.
The data breach involved unauthorized access through a third-party electronic health record vendor, Cerner. Access occurred at least as early as Jan. 22, 2025, according to an alert posted by Munson Healthcare.
The incident compromised personal data, including patient names, Social Security numbers, and information included within patient medical records, such as medical record numbers, doctors, diagnoses, medicines, test results, images, care and treatment.
Munson Healthcare is notifying impacted patients by mail. Consumers are being offered free credit monitoring for 24 months through Experian. Consumers may call 833-931-5700 for additional information.
Attorney General Dana Nessel is renewing her call for Michigan to pass a law to requiring companies to immediately report data breaches to her office, which would allow the AG’s office to quickly alert the public.
Senate Bills 360-364, which aim to enhance protections against data breaches and identity theft, passed the Michigan Senate last year and await consideration before the Michigan House.
“I urge anyone who receives a notice that their personal information may have been compromised to consider taking advantage of the free credit monitoring resources being offered,” Nessel said.
Consumers can protect themselves during a data breach by taking the following actions:
The Michigan Identity Theft Support System is available to help residents seeking to restore their stolen identities.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
